Click any tag below to further narrow down your results
Links
Apple released security updates addressing 105 vulnerabilities in MacOS 26.1 and 56 in iOS 26.1 and iPadOS 26.1. The updates fix flaws across multiple devices but lack detailed severity ratings, frustrating some security experts. No active exploitation of these vulnerabilities has been reported.
Fastly has upgraded its DDoS Protection with the new Adaptive Threat Engine, which improves mitigation accuracy and reduces response time to attacks. The updates focus on cross-referencing legitimate traffic to minimize disruptions and allow for faster detection and response to threats.
The Grafana Image Renderer has been revamped in its v5.0 release, focusing on improved performance, reliability, and security. Key updates include better heuristics for rendering accuracy and a strengthened security sandbox for Grafana Cloud users. Users running the service on premises will need to migrate to the new deployment method.
The Go programming language has released updates 1.25.6 and 1.24.12 to fix six critical vulnerabilities, including denial-of-service risks and potential arbitrary code execution. Developers are urged to upgrade immediately to avoid exploitation in unpatched environments.
Anthropic is launching a Security Center for Claude Code, which will allow users to monitor security scans and issues in their repositories. Users will be able to manually initiate scans, helping to manage code security more effectively. While this feature isn't available yet, it aims to meet the needs of developers in security-sensitive environments.
Microsoft issued out-of-band updates to fix two critical issues affecting Windows 10, Windows 11, and Windows Server. One problem disrupts remote desktop access to Microsoft 365 Cloud PC sessions, while the other prevents some Windows 11 devices with Secure Launch from shutting down or hibernating.
Microsoft addressed a problem where third-party security software falsely flagged WinSqlite3.dll, a core Windows component, as vulnerable. The company updated the DLL in January 2026, encouraging users to install the latest updates for their devices. This issue affected both Windows 10 and 11, as well as Windows Server versions 2012 to 2025.
Google patched 107 vulnerabilities in Android, including two high-severity flaws currently being exploited. Users should check their Android version and update to at least the 2025-12-05 patch level to ensure these issues are resolved. It's important to only install apps from trusted sources and keep devices up to date for security.
The article discusses the latest security features in Google Android 16, highlighting enhancements aimed at scam protection and user safety. These updates include advanced tools to combat phishing and other cyber threats, ensuring a more secure experience for Android users.
HashiCorp announces the general availability of version 7.0 of the Terraform provider for Google Cloud, featuring new ephemeral resources, write-only attributes, and enhanced validation logic. These updates aim to improve security and user experience while ensuring alignment with the latest Google Cloud APIs.
The article appears to discuss updates and features in Firefox version 144, including enhancements to performance, security, and user experience. It highlights Mozilla's commitment to maintaining user privacy and improving browsing efficiency. Specific details about new tools and functionalities may also be included.
Cisco has announced that three critical remote code execution vulnerabilities in its Identity Services Engine (ISE) are being actively exploited, requiring urgent updates from users. The flaws, which allow attackers to execute commands and upload malicious files without authentication, have been assigned a maximum severity rating and must be addressed through specific software patches. Users of ISE 3.3 and 3.4 are advised to upgrade immediately to mitigate risks.
Stay updated with real-time tracking of AWS documentation changes and security updates. This service allows users to monitor modifications across all AWS services to remain informed about critical security developments.
Mozilla has introduced a feature that allows Firefox extension developers to roll back to previously approved versions of their extensions, enabling quick fixes for critical bugs. If a developer reverts an extension, users will automatically receive the previous version within 24 hours if automatic updates are enabled. This feature is available for extensions with at least two approved versions and aims to enhance the security and reliability of add-ons in the Firefox ecosystem.
Cisco has issued security updates for a critical zero-day vulnerability (CVE-2025-20352) in its IOS and IOS XE Software, which is actively being exploited. The flaw allows remote attackers to execute code on vulnerable systems or cause denial-of-service conditions, prompting Cisco to recommend immediate upgrades to secure software versions.